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(54) Apparatus and method for processing servlets 



(57) A method and apparatus for operating a local 
server computer of a client-server network includes a 
technique to receive a request from a client computer of 
the client-server network. A determination is made 
whether the request requires dynamically generated in- 



formation from a servlet object of the client-server net- 
work. If so. a specified servlet object corresponding to 
the request may be uploaded from a remote server com- 
puter of the client-server network. The specified servlet 
object is then executed to obtain dynamically generated 
information corresponding to the request. 
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Description 

Brief Description of the invention 

5 This invention relates generally to exchanging information m a client-server comcutor environment More partic- 

ularly this invention relates to an improved technique (or responding to information requests at a server computer 

Background of the invention 

'0 Client-server computer networks are well known The most prominent example of a client-server computer network 

is the World Wide Web of computers In a client-server computer network a server computer receives a request for 
information from a client computer. Web server software operating on the server computer typically retrieves the re- 
quested information from a file stored on a permanent storage device and transmits the file over the network to the 
client computer that requested the information. The web server software is generally not written using an object oriented 

'5 programming language. Thus, tt is not easily extended to provide new functionality. Given the dynamic nature of today's 
software marketplace, a product's lack of flexibility and extensibility can seriously hinder the marketability of the product 
Current web server software can generate a file dynamically m response to a request from a client computer. 
Typically the web server receives the request and then forks a Common Gateway Interface (CGI) process to dynam- 
ically create the file Once the file has been created, the web server software transmits the die back to the client 

20 computer. Unfortunately, it is computationally expensive to fork a process each time dynamic information needs to be 
generated 

in view of the foregoing it would be highly desirable to provide a web server which dynamically generates infor- 
mation in response to a client computer request, but which does not incur a process start-up expense while generating 
the dynamic information Further it would be highly desirable to provide an ooject oriented web server environment 
2S that is flexible and extendible. 

Summary of the Invention 

The invention includes a method and apparatus for operating a local server computer of a client-server network. 

JJ The invention includes a technique to receive a request from a client computer of the client-server network. A deter- 
mination is made whether the request requires dynamically generated information from a servlet object of the client- 
server network. If so. a specified servlet object corresponding to the request may be uploaded from a remote server 
computer of the client-server network The specified servlet object is then executed to obtain dynamically generated 
information corresponding to the request 

J5 The servlet objects of the invention provide an object oriented web server environment which is flexible and ex- 

tendible. The client-server network of the invention is populated with the servlet objects. The servlet objects operate 
in a continual loop until invoked Thus there is no startup overhead associated with execution of the servfet objects 
By observing a common applications program interface, the servlet objects can run in any server environment. A feature 
of the invention allows untrusted servlet objects to be executed in a secure area, with the dynamically generated 

^0 information being passed from the secure area into the remaining server environment. 

Brief Description of the Drawings 

Examples of the invention will now be described in conjunction with the accompanying drawings, in which: 
J 5 FIGURE 1 illustrates a client-server computer network m accordance with an embodiment of the invention. 

FIGURE 2 is a simplified illustration of the interactions between a web server and the servlets. 
FIGURE 3 is a simplified illustration of the interactions between a web server and a servlet loaded from an external 
server. 

FIGURE 4 illustrates processing steps associated with a servlet processing routine 
so FIGURE 5 illustrates processing steps associated with a servlet processing routine 

Like reference numerals refer to corresponding parts throughout the several views of the drawings 

Detailed Description of the Invention 

SB Figure 1 illustrates a client-server computer network 20. 

The network 20 includes at least one client computer 22 and at least one server computer 24. The client computer 
22 and the server computer 24 are connected by a transmission channel 26. which may be any wire or wireless trans- 
mission channel. 
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The client computer 22 is a standard compuier including a Central Processing Unit (CPU) 30 connected tc a 
memory (primary and/or secondary) 32. The memory 32 stores a numoer of computer programs, including a "browser' 
3J-. As known in the art. a browser is used to communicate with remote server computers 24 and to visually presen; 
the information received from such computers. The client computer 22 establishes network communications ihrougn 

5 a standard network connection device 36. 

The server computer 24 includes standard server computer components, including a network connection device 
40. a CPU 42. and a memory (primary and/or secondary) 44 The memory 44 stores a set of computer programs to 
impfement the processing associated with the invention The memory 44 stores a web server 45 The web server 45 
may be of the type known m the art. which is modified to include the additional programs shown m Figure 1 That is 

'0 m an embodiment of the invention, a standard web server 46 is modified to include a server acceptor thread 48. a 
connection queue 50. a poof administrator 52. a thread pool 54. servfets 56. a servlet map SB. a security administrator 
60. and boundary servlets 62. 

Figure 2 is a simplified illustration of a server computer 24A constructed m accordance with an embodiment of the 
invention. The figure shows a web server 46 interacting with a set of servlets 56A-56N In particular the web server 

J 5 46 interacts with the servlets through an application program interface (API). As indicated in Figure 1 . the web server 
46 and the servlets 55 are stored m memory 44 The web server 46 may be standard web server software that is 
modified to include the functionality described herein. Each servlet 56 is a piece of software code which is used to 
dynamically generate information. Each servlet 56 is an instantiated software object waiting to be invoked. Once it is 
invoked, u dynamically generates information. Note that this technique of dynamically generating information is distinct 

20 from the typical process of fetching static information Irom a permanent storage device. The technique of the invention 
is similar to a CGI script in the sense that it dynamically generates information. However, unlike a CGI script, a servlet 
object of the present invention ts instantiated at server start-up. Thus the servlet can be thought of as operating in a 
continual loop waiting to be executed Observe that after instantiation there is no computational start-up expense when 
the servlet is called. 

25 Figure 3 is a general illustration demonstrating additional features of the invention. Figure 3 illustrates a local server 

computer 24A which receives a request from a client computer (not shown) over transmission channel 26. The web 
server 46 determines that dynamically generated information from a servlet object is required. In this case, the servlet 
ob|ect is not initially on the local server computer 24A. thus it is uploaded by the local server computer 24A from a 
remote server computer 248 using communication link 26. In the example of Figure 3. servlet 56P is passed from the 

JO remote server computer 248 to the local server compuier 24A. 

Figure 3 illustrates another feature of the invention. In particular, it illustrates that the uploaded servlet 56P is 
executed in a security area 57 of the local server computer 24A After execution, the results are passed to a boundary 
servlet 60 in the remaining portion of the local server computer 24A. This security feature allows untrusted servlets to 
be safely executed. 

35 The foregoing discussion provides a general description of the features and benefits of the invention. Attention 

now turns to a more detailed description of these features and benefits. The left side of Figure 4 illustrates processing 
steps associated with an embodiment of the invention. The right side of Figure 4 illustrates program components that 
may be used to execute these operations. 

The first processing step shown in Figure 4 is to determine whether a new request has been received (step 70). 

j o As indicated above, a request is a request for information from a client computer 22 to a server compuier 24. The 
operation of a client computer 22 requesting information from a server computer 24 is well known. It is typically per- 
formed using a Uniform Resource Locator or URL A URL specifies a computer and a file. A typical URL is http://SU/ 
123. This URL is an instruction to retrieve the file "123" from the Slate University computer "SU" using the Hypertext 
Transfer Protocol "HTTP". 

As shown in Figure 4. a server acceptor thread 48 is used to process each new request. Preferably, the invention 
is implemented as a connection-oriented web server with a server acceptor thread that continually loops while accepting 
requests. Once a request is received, it dispatches the request to a connection queue {step 72). As shown in Figure 
1. the connection queue SO is formed in the memory of the local server computer 24. 

If no new request is received, then a check is made to determine whether the queue is empty (step 71). If the 
queue is not empty or a new request has been received, processing proceeds to step 74. Step 74 entails thread pool 
administration operations, which are executed by a pool administrator 52. Figure 1 illustrates a thread pool 54. The 
thread pool 54 is a pool of threads that are used for request processing. Individual threads fetch and process requests 
from the connection queue 50. The pool administrator 52 operates to ensure that there is a thread for each request in 
the connection queue 50. The pool administrator 52 creates or forks additional threads to handle new requests in the 
ss connection queue 50. If a maximum number of threads is reached, the pool administrator 52 blocks new requests from 
entering the connection queue 50. In such a case, the server computer does not receive new requests. On the other 
hand, if a thread has been waiting more than a predetermined period of time for a request from the connection queue 
50. then the pool administrator 60 will destroy it. Preferably, a new handler thread is created using the buffer space of 
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a destroyed handler thread In other words the invention is preferably implemented by using a soeafic oun'e: memory 
soace for a thread When a thread is oestroyed. the buffer memory soace is cleared but it is assigned to a new :rveac 
By reusing allocated memory in this manner this embodiment of the invention minimizes the amount of memory used 
by the system especially when compared to systems which allocate and deallocate memory on a oer reauest oasis 

5 After the thread pool administration operations are performed {step 7-i) a thread retrieves a recuesi from the 

connection queue (steD 75) The thread then maps tne request to a servlet name (step 75) The serviet may be soecifiea 
oy a URL in which case the mapping process is direct On the other hand some translation process may oe requires 
to identify which servlet will be able to service the request The mapping operation may be performed in one of ;ne 
following ways A server administrator m«y specify that some kinds of client requests always map to a particular servlet 

w For example one which talks to a particular database A server administrator may specify that part of the ciicnt request 
is the name of the servlet. as found in an administered servlets directory At many sites, that directory would be shared 
between servers which share the load of processing for the site's clients. Some servers may be able to automatically 
invoke servlets to filter the output of other servlets. based on their administrative configuration For example particular 
types of servlet output may trigger post-processing by other servlets. perhaps to perform format conversions Properly 

'5 authorized clients may specify the servlet to be invoked, without administrative intervention 

Security operations may also be performed by the thread (step SO). A security administrator 60 may be used to 
identify trusted and untrusted classes of servlets The decision to trust a servlet may be established by a set of rules 
associated with the security administrator 60 For example, the security administrator 60 may decide to trust all local 
servlets and mistrust all uploaded network servlets Untrusted servlets are then executed in the security area 57 as 

20 shown in Figure 3 The security administrator 60 may also be used to determine if the servlet is authorized to perform 
predetermined risky operations Security information of this type may be stored in the thread 

JAVA servlets m accordance with the invention provide strong security policy support This is because all JAVA 
environments provide a Security Manger which can be used to control whether actions such as network or hie access 
are to be permitted. By default, all servlets are untrusted and are not allowed to perform operations such as accessing 

2S network services or local files. However, servlets "built into" the server, or servlets which have been digitally signed as 
they were put into JAVA Archive files, may be trusted and granted more permissions by the security manager A digital 
signature on executable code indicates that the organization which signed the code "vouches for if in some sense 
Such signatures can't support accountability by themselves, but they do indicate a degree of assurance that may be 
placed on use of that code. For example, a particular signature from an MIS organization might be required on all code 

30 which is granted general access to network services within a corporate intranet. That signature might only be used on 
code which is strongly believed not to violate particular security policies. Extension APIs in other languages, such as 
C or scripting languages, can't support such fine grained access controls even if they do allow digital signatures for 
their code. 

After security operations are performed (step 80). the thread is dispatched (step 82 of Figure 5) The dispatch 

is operation entails invoking a serviet so that it generates the requested dynamic information The dispatch operation is 
one of two types. A decision is made to determine whether the servlet is local (step 84). If the servlet is local, then the 
local servlet is executed (step 65). This results in the generation of dynamic information that is then processed by the 
web server 45 in a standard manner. The web server 46 typically passes the information back to the client computer 
using known techniques. The exchange of information between a serviet and the web server 46 is achieved through 

J o an application program interface, which is described below. 

If the servlet is not local, then it is uploaded from a remote server 24B (step 68). A decision is then made regarding 
whether the uploaded servlet is safe (step 90). Recall that the security operation step resulted in the thread acquiring 
information regarding security parameters for servlets. If there are no security problems associated with the uploaded 
servlet. then it is executed locally (step 92). On the other hand, if a security problem is identified, then the servlet is 

4 $ executed in a security area {step 94). Thereafter, the dynamically generated results are passed to the non-securily 
area (step 96). A boundary servlet may be used for this purpose. The boundary servlet may be implemented through 
the use of stubs and subcontracts or through other "fire wall" techniques known in the art. After the servlet is executed, 
processing returns to step 70 of Figure 4, 

The operation of the invention has now been fully described. Attention now turns to a more particular discussion 

50 of the servlet objects that are used in accordance with the invention and an embodiment of the application program 
interface used in connection with the servlet objects. As indicated above, the servlet objects are objects are software 
objects that are used to dynamically generate information. They are instantiated objects that sit in a loop wailing to be 
invoked. Preferably, they are implemented as object bytecodes in the' JAVA™ programming language. It is well known 
that the JAVA™ programming language is used to implement "applets" on a client computer. An "applet" is executable 

55 JAVA object bytecodes that are used to generate a graphical display on a client computer. The servlets embodying the 
present invention are executed on the server side and do not have graphical content. 

A servlet is typically instantiated on server startup. In the alternative, the servlet may be instantiated under a 
predetermined set of conditions or by client invocation. The serviet may be instantiated and executed by using its URL 
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(e g . hup //host/ < servlet URL>) The http protocol suppons tne passing of arguments, thus arguments may be oasses 
to the servlei fe g ht;p.//host< < servlet URL> 7 < arguments >) The oropemes oDiect is a JAVA programming ianguaae 
properties class which comprises a set of "name value* pairs A system administrator can pass arguments to an in- 
stantiated HttpServiet object through the properties object In this way tne system administrator can "customize" an 
HttpServlet for a particular server at a particular site For examole the system administrator can pass the Hupservie: 
object site specific information about tne network location of a database wnich stores aocumenis mat will be recuostec 
by client processes across the network or the amount of memory available in system buffers wnich will be used for 
processing the server administrator. 

Once instantiated, a servlei loops until the server is shut off or a destroy method is called on the servl^t by the 
server Since the servlei operates in a continual loop as it waits (or requests to act upon the server computer avoids 
the overhead of creating and destroying the servlet between requests to the servtet. In addition, keeping sorviets alive 
between requests allows servlets to pass data and communicate amongst themselves For example servlcts can 
maintain data about a user between sessions by the user This data can be shared among different sorviets m order 
to customize a working environment within which the user works If servlets were created and destroyed on a per 
request basis, it would be much more difficult, if not practically impossible, for a servlet to understand the environment 
within which it runs and utilize this knowledge to provide improved processing capabilities. The server computer can 
call a destroy method on the servlet when some resource limit in terms of time memory, etc is reacned 

The servlet application program interface (API) establishes a standard for interfacing servlets with information 
servers, such as web servers The servlet API contains methods for initializing a servlet. processing the request, getting 
servlet information, and destroying the servlet The servlet API allows platform independent servlets An example 
servlet interface is as follows. 

Servlet interface: 
interface HttpServlet { 

Initialize (ServletContext, ServerPropenies); 

Service(HttpRequest, HttpResponse); 

Destroy (); 

} 

The server computer passes objects that implement the "HttpRequesf. while the servlet returns an "HttpResponse" 
object. The "ServletContext" interface is used to exchange information with the server environment. Some of the meth- 
ods on the "ServletContext" object are "Getserver(}" and "GeiServleisO". "GetServer" returns a pointer to the parent 
server within which the instantiated Httpservlet runs. Using this pointer, the HttpServlet object can find out information 
about its parent server. The "GetServiel" method returns pointers to the servlets running on the parent server. The 
"ServerFroperties" interlace is used to exchange information regarding specific server properties established by a 
server administrator 

Servlets support the familiar programming model of accepting requests and generating responses. The following 
is a simple servtet defining a single method called "service" ■ 
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import Java. servlet.*; 

public class MyServlet extends GenericServlet { 

public void service ( 

ServletRequest request, 
ServletResponse response 

) throws ServletException, IOException 

{ 
} 



The service method is provided with Request and Response parameters. These parameters encapsulate the data sent 
by [he client thereby allowing serviets to report status information, such as errors Servlets normally retrieve most of 
their parameters through an input stream and send their responses using an output stream 

25 

ServlellnputStream in = request. getlnputStream () 
ServletOutputStream out = response. getOutputStream (): 

These input and output streams may be used with data m whatever format is appropriate. For example an applet and 
30 servlet might exchange data using object serialization. HTML, or any number of image formats. 

Since servlets are JAVA objects, they have instance-specific data. This means that in effect servlets are independ- 
ent applications running within servers, without needing the complexity of additional classes {which are required by 
some alternative server extension APIs). Servlets have access to some servlet-spectfic configuration data at initiali- 
zation time This allows different instances of the same servlet class to be initialized with different data, and be managed 
35 as differently named servlets. The data provided at initialization time includes an area where each instance keeps its 
persistent instance-specific state. 

Building upon the previous simple servlet examples, the following program code is an example of a servlet that is 
used to send Hypertext Markup Language (HTML) text when it is invoked: 



J5 
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public class SimpleServlet extends GenericServlet { 
public void service(ServletRequest req, ServletResponse res) 
throws ServletException, IOException 

f 

res.setContentType("text/htmr); 

PrintWriter out = new PrintWriter(res.geiOutputStream()); 

out.println( H < HEAD > < TITLE > SimpleScrvlei Output 
< /TITLE > </HEAD> <BODY>"); 

out.println("<hl > SimpleServlet Output </hl>"); 
out. printing <P >This is output from SimpleServlet."); 
out.printInr</BODY>"); 
out.flush(); 

} 

public String getServletlnfoO { 

return "A simple servlet"; 

} 

} 

The following program code is an example of a servlet that uses the finger protocol to query information about 
users on specified host computers. The query string parameters < U > user < /tt >. < tt > hosts < /tt >. and < tt > verbose 

< /tt > can be used to specify the user and hosts to query The parameter <tt> user </tt> is the user name. <tt> hosts 

< /tt > is a comma-separated list of host names to query, and <tt> verbose </tt>. if specified, will cause verbose output 
to be generated. For example. <pre> http/goa/finger.html?user=dac&hosts=eno.doppio&verbose=yes </pre> will re- 
quest full information about user "dac" on both hosts "eno" and "doppio". 
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public 

class FingerServlet extends GenericServlet { 
I" 

* Port number for finger daemon. 
"7 

'° static final int FINGER_PORT = 79; 

/*" 

* Handles a single finger request from the client. 
"7 

2o public void service(ScrvletRequest req, ServletResponse res) 

throws ServletException, IOException 

{ 

2S String user = req.getParameter("user"); 

String hosts = req.getParameter("hosts"); 

String verbose = req. getParameter(" verbose"); 
so r es.setContentType("text/html"); 

PrintStream out = new PrintStream(res.getOutputStreamO); 
35 out.println("<html>"); 

out.println(' , <head> < title > Finger ServleK /title > </head>"); 

out.println("<body>"); 

out. println( M <h2> Finger results: </h2> "); 

outprintln( M <pre> "); 

if (hosts == null) { 

45 

finger(out, user, null, "yes H .equalsIgnoreCase(verbose)); 
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} else { 

StringTokenizer si = new StringTokenizer(hosts, V); 
while (st.hasMoreTokensQ) { 

String host = st.nextTokenO; 

out.println(T + h ost + "]"); 

try { 

fingcr(out, user, host, 

M yes\equalsIgnoreCase(verbose)); 

} catch (IOException e) { 
out.println(c); 

} 

out.printlnQ; 

} 

} 

out.printlnC </pre> M ); 

out. printing < /body > </html>"); 

} 

/* 

* Sends finger output for a user and host to the specified output 

* stream. 
V 

void finger(OutputStream out, String user, String host, boolean verbose) 
throws IOException 

{ 

// open connection to finger daemon 
Socket s; 

if (host = = null) { 

s = new Socket(InetAddress.getLocalHost(), 

FINGER_PORT); 

} else { 

s = new Socket(host, FINGER_PORT); 

} 

// send finger command 
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PrintStream ps = new PrintStream(s.getOutputStream()); 
if (verbose) { 

5 ps.print(7W"); 

} 

if (user ! = null) { 
10 ps.print(user); 

} 

ps.print("\r\n"); 
ps.flushO; 

// copy results to output stream 
InputStream in = s.getInputStream(); 

20 

byte[] buf = new byte [512]; 
int len; 

while ((len = in.read(buf, 0, buf.length)) != -1) { 
out.write(buf, 0, len); 

} 

20 s.closeO; 

} 

} 

25 

Those skilled in the art will appreciate that servlets which are being used with the HTTP protocol may support any 
HTTP method, including GET. POST. HEAD, and more. They may redirect requests to other locations, and send HTTP- 
specific error messages. They can gel access to parameters which were passed through standard HTML forms, in- 
cluding the HTTP method to be performed and the URi. which identifies the destination of the request. 

-o As indicated above, one of the biggest performance features of servlets is that they do not require creation of a 

new process for each request. In most environments, many servlets run in parallel within the same process as the 
server. When used in such environments with HTTP servlets provide compelling performance advantages over both 
the CGI approach and the Fast-CGI approach. This is because servlets have a small computational expense during 
thread context switches. Since in most environments servlets can handle many client requests each time they are 

j s initialized, the cost of the initialization is spread over many methods. All the client requests to that service have the 
opportunity to share data and communications resources, benefitting more strongly from system caches. 

Those skilled in the art will appreciate that the servlets embodying the invention can be used to dynamically extends 
Java-enabled servers. The servlets provide a general framework for services built using the request-response para- 
digm. The servlets can provide secure web-based access to data which is presented using HTML web pages and they 

so can be used for interactively viewing or modifying that data using dynamic web page generation techniques. 

The servlets embodying the invention may be used to provide customized multiuser services for customer bases. 
The servlets are also flexible enough to support standardized services, such as serving static web pages through the 
HTTP (or HTTPS) protocols, and proxying services. Since they are used for dynamic extensibility, they may be used 
in a plug-in style, supporting facilities such as search engines and semi-custom applications, such as web-based order 

55 entry or inventory systems. 

Although the servlets are preferably written in JAVA, the servlet clients may be written in any language. When 
servlets are used in the middle tiers of distributed application systems, they can in turn be clients to other services, 
written in any language. 
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Those skilled m the art will appreciate that serviets may be used m several modes The basic mode is at the core 
of a request/response protocol, in addition serviets may be specialized to support protocols sucn as HTTP in HTTP 
based applications, serviets are portable complete, and mucn more efliaent replacement (or CGI based extensions 
Also m HTTP applications, serviets may be used with HTML server side includes to dynamically generate part of a 
weo document. 

The foregoing aescnption. for purposes of explanation, used specific nomenclature to provide a thorough under- 
standing of examples of the invention However, it will be apparent to one skilled m the art that the specific details are 
not required m order to practice other examples of the invention In other instances, well know circuits and devices are 
shown m block diayram lorm in order to avoid unnecessary distraction from the underlying principles Thus, the fore- 
going descriptions of specific embodiments of the present invention are presented for purposes of illustration and 
description 



Claims 

1 . A method executed by a local server computer under the control of a program, said local server computer including 
a memory for storing said program said local server computer forming a portion of a client-server network, said 
method composing the steps of: 

receiving a request from a client computer of said client-server network: 

determining that satd request requires dynamically generated information from a servlet object of said client- 
server network: 

uploading from a remote server computer of satd client-server network a specified servlet object corresponding 
to said request: and 

executing said specified servlet object to obtain dynamically generated information corresponding to said re- 
quest. 

2. The method of claim 1 further comprising the step of passing dynamically generated information from said specified 
servlet object to a web server operating on said local server computer, said passing step being facilitated with an 

30 application program interface. 

3. The method of claim 2 wherein said application programming interface specifies techniques for performing at least 
one of the following operations: initializing a servlet object, executing a servlet object, and destroying a servlet 
object. 

35 

4. The method of claim 2 wherein said specified servlet object and said application program interface are specified 
as object bytecodes in the JAVA programming language 

5. The method of claim 2 further comprising the step of sending said dynamically generated information from said 
-0 web server to said client computer. 

6. The method of claim 1 wherein said executing step includes the steps of 
executing said specified servlet in a security area of said local server computer: and 

passing said dynamically generated information from said security area to a non-security area of said local 
server computer. 

7. The method of claim 1 wherein said local server computer stores a plurality of servlet objects, each of said servlet 
objects continuously operating until invoked in response to a specified request from a client computer 

8. The method of claim 7 wherein said plurality of servlet objects pass data to one another. 

9. The method of claim 7 wherein said selected servlet objects of said plurality of servlet objects are instantiated at 
the start-up of said local server computer. 

ss 

10. The method of claim 7 wherein selected servlet objects of said plurality of servlet objects are instantiated in re- 
sponse to a demand from said client computer. 
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The method of claim 7 wherein selected serviet objects of said plurality of serviet ooiects are instantiated in re- 
sponse to an activated serviet URL 

The method of claim 1 1 wherein satd serviet URL includes arguments 

The method of claim i wherein said receiving step induces the stop of storing said request m a connection queue 

14. The method of claim 1 3 wherein satd determining step includes tne step of selecting a handler thread from a pool 
of handler threads to execute said determining step 

10 

1 5. The method of claim 1 4 further comprising the step of operating said pool of handier threads by selectively creating 
a new handler thread and destroying an old handler thread 

16. The method of claim 15 wherein said operating step includes the step of reusing a butter memory space of said 
'5 old handler thread for said new handler thread 

1 7. A computer readable memory that can be used to direct a server computer of a client-server computer network to 
function in a specified manner, comprising 

a first set of instructions to receive a request from a client computer of said client-server network, 
a second set of instructions to determine that said request requires dynamically generated information from 
a serviet object of said client-server network: 

a third set of instructions to upload from a remote server computer of said client-server network a specified 
serviet object corresponding to said request: and 

a fourth set of instructions to execute said specified serviet ooject to obtain dynamically generated information 
corresponding to said request 

18. The apparatus of claim 17 further comprising a fifth set of instructions to pass, through an application program 
interface, dynamically generated information from satd specified serviet object to a web server operating on satd 

30 local server computer. 

19. The apparatus of claim 18 further comprising a sixth set of instructions to pass said dynamically generated infor- 
mation from satd web server to said client computer 

35 20. The apparatus of claim 17 further comprising a seventh set of instructions to store a plurality of serviet objects on 
said server computer each of said serviet objects continuously operating until invoked in response to a specified 
request from a client computer. 

21. The apparatus of claim 20 wherein said seventh set of instructions include instructions to pass data between said 
-o plurality of serviet objects. 

22. A computer readable memory that can be used to direct a server computer of a client-server computer network to 
function in a specified manner, comprising: 

a first set of instructions to receive a request from a client computer of said client-server computer network: 
a second set of instructions to determine that said request requires dynamically generated information from 
a serviet object of said server computer: 

a third set of instructions to execute said specified serviet object to obtain dynamically generated information 
corresponding to said request: and 

a fourth set of instructions to pass said dynamically generated information to said client computer 

23. The apparatus of claim 22 wherein said second set of instructions include instructions to interpret a serviet URL 
corresponding to said request. 

55 24. The apparatus of claim 22 wherein said second set of instructions include instructions to interpret a serviet URL 
with arguments. 

25. The apparatus of claim 22 further comprising a fifth set ol instructions to store a plurality ot serviet objects on said 
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server computer, eacnof said servlet objects continuously operating until snvokea in response to a specified recues: 
Irom a client computer 

26. The apparatus of claim 20 wherein said fifth set of instructions include instructions to pass cata between said 
5 plurality of servlet objects. 

27. A cfient-server computer network comprising- 

a client computer to generate a requesi: and 
} 0 a server computer to 

determine that said request requires dynamically generated information from a servlet object of saic server 
computer. 

execute said specified servlet object to obtain dynamically generated information corresponding :o said 
15 request, and 

pass said dynamically generated information to said client computer. 

28. The apparatus of claim 27 further comprising a remote server computer storing a set of servlet objects that can 
be passed to said server computer. 

20 

29. The apparatus of claim 27 wherein said server computer stores a plurality of servlet objects, each of said servlet 
objects continuously operating until invoked in response to a specified request from said client computer 

30. The apparatus of claim 29 wherein said plurality of servlet objects pass data between themselves. 



40 



J5 



50 



55 



13 



EP 0 810 524 A1 



20 

\ 



,26 



L 



22A 



30 



CPU 



Network 
Connection 

36 



J 



Browser 



r 



32 



34 



o 
o 
o 



r 



24A 



Network 



Connection ^ I 42 

if 



40 



CPU 



L 



44 



T 

Y 



Web Server 



Server Acceptor Thread 



Connection Queue 



Pool Administrator 



Thread Pool 



Servlets 



Servlet Map 



Security Administrator 



Boundary Servlets 



Figure 1 



14 



O 
O 

o 



EP 0 810 524 A1 



r 



24A 



Web Server 



API 



API 



Servlet A 



O 
O 



Servlet N 



56A 



56N 



Figure 2 



15 



EP 0 810 524 A1 




Figure 3 



BNSOOCto- oeies?4Ai> 



16 



EP 0 810 524 A1 




Store Request 
in Connection 
Queue 



74 



Thread Pool 
Administration 



t r 



76 



Release Thread/ 
Retrieve Request 



78 



Map Servlet 
Name 



Perform 
Security 
Operations 



Server Acceptor 
Thread (48) 



Server Acceptor 
Thread (48)/ 
Connection 
Queue (50) 



Pool 

Administrator (52) 



Thread from Thread 
Pool(54) 



Thread from Thread 
Pool (54)/Servlet Map (50) 



Security 

Administrator (60) 



(To Step 82; Figure 5) 



Figure 4 



17 



EP 0 810 524 A1 



(Fror. step £0; Figure 4) 



No 



▼ r 



83 



Upload Remote 
Servlet 




t r 



Execute Servlet 
Behind Wall 



96 



Pass Results 
to Boundary 
Servlet 



Dispatch 
Thread 




Yes 



r 



86 



Execute Local 
Servlet 



-92 



Execute Servlet 
Locally 



(To step 70; Figure 4) 



Figure 5 



18 



EP 0 810 524 A1 



Ku rope an I'atcnt 
Office 



EUROPEAN SEARCH REPORT 



AppJitatiun Numbtf 

EP 97 30 3576 



P.X 



DOCUMENTS CONSIDERED TO BE RELEVANT 



Citation of document »itn indication, where appropriate, 
of relevant piiwates 



Relent ' Cl.vSSim AllUN UK ItU. 
to riiiim 4JTU<'4lK)N (Im CI.m 



NETSCAPEWORLD , 

5 May 1997, XP002041555 
JIM LOWE: "How Java servlets can replace 
CGI scripts - for ease, performance & 
more" 

(hup: / / www.es. berkeley.edu/ "padmanab/pape 
rs/masters-tr .ps) 

(hup: / /www. net capewor Id. com/net scapewor Id 
/nw-05-1997/nw-05 -bytecode.html ) 

* the whole document * 

NETSCAPEWORLD, 

- 4 July 1996 XP002041556 
TP I SHA GORMAN: "Server-side appliets in 
Java generate developer anticipation" 
(.http://wwv.netscapewor1d.com/netscapeworl 
d/nw-07-1996/mw-07 -jeeves.html ) 

* the whole document * 

UNIVERSITY OF CALIFORNIA AT BERKELEY 
REPORT NO. UCB/CSD-95-875, 
May 1995, COMPUTER SCIENCE DIVISION, 
pages 1-24, XP002041557 
VENKATA N. PAOMANABHAN: "Improving World 
Wide Web Latency" 

(http://www. cs .berkeley. edu/ "padmanab/pape 
rs/masters-tr.ps) 

* abstract * 

* page 8, paragraph 2 - paragraph 3 * 



-/- 



1-30 



1-30 



1.17,22, 
27 



G06F9/46 



IkX.ltMt Ad. HKLUb 
SKAW(Mtl) fine. CI. 6) 



G06F 



l"he prevent veareli repurt oj\ hern drawn up for all dainu 



THE HAGUE 



23 September 1997 



Fonderson, A 



CArtcoRY ok arto out i;MKf\ rs 



X : puticuliriy relevant if taken alone 

Y : partioilvrly relevant if combined with another 

document of the %«■« calecor) 
K '. technological b»ckr r mind 
U : non- writ t«i dtt cloture 
P : intemndtate document 



T : thenr> or pnnapJc uodtrljin* the lavennnn 
fc : eariie- piimt document, but puWilhed on. or 

after ihe filing 4 ale 
I) : document cited in the application 
L : document a ted tur other leuuu 

4 : member of the fane patent family, coerctpondtAK 
document 



19 



EP 0 810 524 A1 



Kurnpcin Patent 
Office 



El 'ROPE AN SEARCH REPORT 



Application NgmOtf 

EP 9? 30 3576 



DOCUMENTS CONSIDERED TO BE RELEVANT 



Catcjon 



Citation at document »tth indication, »herr appropriate, 
of rclrvi*n( pavwgo 



FIFTH INTERNATIONAL WORLD WIDE WEB 
CONFERENCE (POSITION PAPER FOR THE 
WORKSHOP " PROGRAMMING THE WEB - A SEARCH 
FOR API'S", 

6 May 1996, PARIS, FRANCE, XP002041558 
MARK R. BROWN: "FastCGI : A 
High-Performance Gateway Interface" 
(http: //www. fastcgi .com/ki t/doc/www5-api -w 
orkshop. html ) 
* the whole document * 

, IBM TECHNICAL DISCLOSURE BULLETIN, 

j vol . 36, no. 5, May 1995, NEW YORK US, 

! pages 199-200, XP002041559 "Control of 

! Dynamic Threads Pool for Concurrent Remote 

i Procedure C a 1 Is" 

i * .the whole document * 



(o claim 



cussint 4 ( ion or iih: 

UTl.K A I ION ilnt.t 1.6) 



1,17 
27 



22 



14,15 



I Kt'HMt AJ. HU.US 
SKaK(HH) lini.n.Ai 



I'hc prevent scorch rrport hu been drawn up for ail claims 



THE HAGUE 



23 September 1997 



Fonderson, A 



CA I KOOKY OF mt» UOCLMEMS 



X : particularly relevant if taken altHve 

\ ; particularly relewnt if cuabined with another 

document nf the fame category 
A : technolopciJ background 
O : nun -Tit ten tfuduiurc 
f : ifltenacdiate document 



I : theory or prmaple undertviflK the invention 
K : •arttO' patent document, but published on, nr 

after the filmc 4al< 
t) ; dtKumcni cited in ihe application 
I. : document die* for rwnrr fca*nni 

ii : member of lh« lame patent family. eorreioondin* 
document 



BNSOOCIO- <EP 08i052eAi> 



20 



This Page is Inserted by IFW Indexing and Scanning 
Operations and is not part of the Official Record 



Defective images within this document are accurate representations of the original 
documents submitted by the applicant. 

Defects in the images include but are not limited to the items checked: 

□ BLACK BORDERS 

□ IMAGE CUT OFF AT TOP, BOTTOM OR SIDES 



□ BLURRED OR ILLEGIBLE TEXT OR DRAWING 

□ SKEWED/SLANTED IMAGES 

□ COLOR OR BLACK AND WHITE PHOTOGRAPHS 

□ GRAY SCALE DOCUMENTS 

□ LINES OR MARKS ON ORIGINAL DOCUMENT 

□ REFERENCE(S) OR EXHIBIT(S) SUBMITTED ARE POOR QUALITY 

□ OTHER: 

IMAGES ARE BEST AVAILABLE COPY. 
As rescanning these documents will not correct the image 
problems checked, please do not report these problems to 
the IFW Image Problem Mailbox. 



BEST AVAILABLE IMAGES 




ADED TEXT OR DRAWING 



^iiis Page Blank (uspto) 



